IT

Tracker / CVE-2018-20505

CVE-2018-20505

High 7.5

SQLite 3.25.2, when queries are run on a table with a malformed PRIMARY KEY, allows remote attackers to cause a denial of service (application crash) by leveraging the ability to run arbitrary SQL statements (such as in certain WebSQL use cases).

Affected products and versions

apple icloud · … → 7.10
apple iphone_os · … → 12.1.3
apple itunes · … → 12.9.3
apple mac_os_x · … → 10.14.2
apple watchos · … → 5.1.3
sqlite sqlite · … → 3.25.2

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References